Out-of-bounds Write Affecting libtiff package, versions <0:4.0.3-25.el7_2
Threat Intelligence
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-CENTOS7-LIBTIFF-2068953
- published 26 Jul 2021
- disclosed 15 Jun 2016
Introduced: 15 Jun 2016
CVE-2016-5320 Open this link in a new tabHow to fix?
Upgrade Centos:7 libtiff to version 0:4.0.3-25.el7_2 or higher.
NVD Description
Note: Versions mentioned in the description apply only to the upstream libtiff package and not the libtiff package as distributed by Centos.
See How to fix? for Centos:7 relevant fixed versions and status.
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-5314. Reason: This candidate is a reservation duplicate of CVE-2016-5314. Notes: All CVE users should reference CVE-2016-5314 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage